mirror of
https://github.com/0xMarcio/cve.git
synced 2026-05-14 19:18:06 +02:00
26 lines
1016 B
Markdown
26 lines
1016 B
Markdown
### [CVE-2015-8399](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-8399)
|
|

|
|

|
|

|
|
|
|
### Description
|
|
|
|
Atlassian Confluence before 5.8.17 allows remote authenticated users to read configuration files via the decoratorName parameter to (1) spaces/viewdefaultdecorator.action or (2) admin/viewdefaultdecorator.action.
|
|
|
|
### POC
|
|
|
|
#### Reference
|
|
- https://www.exploit-db.com/exploits/39170/
|
|
|
|
#### Github
|
|
- https://github.com/0ps/pocassistdb
|
|
- https://github.com/ARPSyndicate/cvemon
|
|
- https://github.com/ARPSyndicate/kenzer-templates
|
|
- https://github.com/CLincat/vulcat
|
|
- https://github.com/Elsfa7-110/kenzer-templates
|
|
- https://github.com/HimmelAward/Goby_POC
|
|
- https://github.com/Z0fhack/Goby_POC
|
|
- https://github.com/enomothem/PenTestNote
|
|
- https://github.com/jweny/pocassistdb
|
|
|